Communicator 4.07 is out!Saturday October 3rd, 1998Alex Farber and George Giannukos both have written in with the news that Communicator 4.07 is now on Netscape's FTP site! You can get it here. So what's new in this one? I haven't found any release notes, do I have to download it in order to see them? I think it fixes a bug which would allow someone to access all of your cache directory, but a full changelog would be nice. Suppose we'll have to wait for their website to catch up ... Netscape has been taking it's own time about this bugfix! It's huge. http://www.whitehats.com/demo but I've seen several sites using this, not all advertising what it is. I neglected to mention in my last message that 4.07 does indeed fix the recent privacy bug. Exploit now yields a javascript error: ---- JavaScript Error: http://www.whitehats.com/cgi-bin/cache.cgi?cow, line 1: access disallowed from scripts at http://www.whitehats.com/cgi-bin/cache.cgi?cow to documents at another domain. ---- It still doesn't fix the gif transparency problems with Dynamic Fonts (discoloration on various video cards)..... |